Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities
-
Updated
Sep 3, 2025 - Shell
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities
Integrate SonarQube scanner to GitHub Actions
Welcome to CloudCaptain, your one-stop-shop for all things cloud-related!
A collection of technical and sales resources related to Prisma Cloud Compute and Prisma Cloud Enterprise created for the PANW Channel Partner Ecosystem and other engineers working with the solution
EKS Goat: AWS ECR & EKS Security Masterclass by Anjali & Divyanshu
All that is required to run MobSF in the ci
OWASP EKS Goat is a deliberately vulnerable EKS cluster environment to explore AWS cloud-native security through hands-on attack and defense labs with walkthrough.
An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about DevSecOps in Cybersecurity.
Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayHub project contain one click docker-compose file which configure and run images from docker hub.
Quickly get a GitLab network up and running. The network consists of a GitLab server, docker-in-docker compatible GitLab runners, and SonarQube
A centralized hub for platform engineering teams, providing resources, best practices, and automation tools. Includes IaC templates, blueprints, and operational guides to help build scalable, secure, and efficient platforms for cloud-native environments and DevSecOps workflows.
Setup a DevSecOps Infrastructure Pipeline using All Native AWS Tools + CFN_NAG
Helps you continuously monitor and fix common security vulnerabilities in your Django application.
GitHub Action that wraps Yelp/detect-secrets and provides an enterprise friendly way of detecting and preventing secrets in code.
This GitHub Action allows you to run Gitleaks in your GitHub workflow.
Multi-tenancy assets for IBM clients to build SaaS
Collection of roadmaps, tools, best practice, resources about DevSecOps
Templates to integrate Fortify application security testing with Amazon Web Services (AWS), Azure, Google Cloud Platform (GCP) and Oracle Cloud Infrastructure (OCI)
Add a description, image, and links to the devsecops topic page so that developers can more easily learn about it.
To associate your repository with the devsecops topic, visit your repo's landing page and select "manage topics."